DOJ shutters Blackshades malware ring

The DOJ has made two more arrests and seized the domain of the Blackshades malware operation

Preet Bharara, United States Attorney for the Southern District of New York, in a press conference in New York announcing the Blackshades arrests.

Preet Bharara, United States Attorney for the Southern District of New York, in a press conference in New York announcing the Blackshades arrests.

The U.S. Department of Justice has shuttered the Blackshades malware operation, which sold potentially pernicious software that was installed on as many as 500,000 computers worldwide.

The U.S. Attorney's Office for the Southern District of New York arrested three alleged key members of the Blackshades organization, as well as two individuals in the New York area who the DOJ said used the software to break into hundreds of computers, it announced Monday. The DOJ coordinated efforts with law enforcement agencies across 19 countries to make the arrests. Authorities arrested 97 people globally.

The DOJ also disabled the Blackshades Web domain, where the invasive software was sold.

"I think the days when people thought they could very simply and anonymously buy malware to invade other people's privacy and steal their property are over," said Preet Bharara, U.S. attorney for the Southern District of New York, at a press conference announcing the arrests.

"You can't just hide in another country anymore. The nations of the world appreciate that [malware] is a global threat, not just one that affects the United States," Bharara said.

Blackshades allegedly sold a remote access tool, or RAT, which could capture information on a user's computer, including photographs, documents and passwords to access online accounts. It could record every keystroke made on a user's keyboard, which could be used to steal credit card numbers and other sensitive information.

The software could also be used to activate a computer's webcam to spy on someone in their own home without their knowledge.

RAT software was purchased by users in more than 100 countries and infected more than 500,000 computers, the DOJ estimated. The software was most often surreptitiously installed on a user's computer when they clicked on a Web address link that would download and install the software. Once on a user's computer, the software could propagate itself to other computers by sending messages to people in the computer's address book.

The DOJ had already arrested the suspected creators of Blackshades, Michael Hogue, aka "xVisceral," and Alec Yucel. Yucel, a Swedish national, was arrested in Moldova in November 2013, and is awaiting extradition to the U.S. The indictment for Yucel remained under seal until Monday.

Hogue was arrested in Arizona in June 2012, subsequently pled guilty in January 2013 and has been cooperating with the government investigation, the DOJ said.

He and Yucel have been charged with multiple counts of computer hacking, with each count carrying a maximum penalty of up to 10 years in prison.

Brendan Johnston, a former Blackshades employee who allegedly helped sell RAT and provided technical assistance, has also been arrested.

Two New York buyers of the RAT were also arrested, Kyle Fedorek and Marlin Rappa. They are accused of using the software to steal online information and spy on users through webcams.

The DOJ also seized the domain name for the website that sold the Blackshades RAT and obtained warrants to seize assets of Blackshades' owners.

Bharara advised users of the RAT to come forward and present themselves to the DOJ, or, "at the very least" stop using the software.

Joab Jackson covers enterprise software and general technology breaking news for The IDG News Service. Follow Joab on Twitter at @Joab_Jackson. Joab's e-mail address is Joab_Jackson@idg.com

Join the newsletter!

Error: Please check your email address.
Rocket to Success - Your 10 Tips for Smarter ERP System Selection

Tags Criminallegalcybercrime

Keep up with the latest tech news, reviews and previews by subscribing to the Good Gear Guide newsletter.

Joab Jackson

IDG News Service
Show Comments

Most Popular Reviews

Latest Articles

Resources

PCW Evaluation Team

Ben Ramsden

Sharp PN-40TC1 Huddle Board

Brainstorming, innovation, problem solving, and negotiation have all become much more productive and valuable if people can easily collaborate in real time with minimal friction.

Sarah Ieroianni

Brother QL-820NWB Professional Label Printer

The print quality also does not disappoint, it’s clear, bold, doesn’t smudge and the text is perfectly sized.

Ratchada Dunn

Sharp PN-40TC1 Huddle Board

The Huddle Board’s built in program; Sharp Touch Viewing software allows us to easily manipulate and edit our documents (jpegs and PDFs) all at the same time on the dashboard.

George Khoury

Sharp PN-40TC1 Huddle Board

The biggest perks for me would be that it comes with easy to use and comprehensive programs that make the collaboration process a whole lot more intuitive and organic

David Coyle

Brother PocketJet PJ-773 A4 Portable Thermal Printer

I rate the printer as a 5 out of 5 stars as it has been able to fit seamlessly into my busy and mobile lifestyle.

Kurt Hegetschweiler

Brother PocketJet PJ-773 A4 Portable Thermal Printer

It’s perfect for mobile workers. Just take it out — it’s small enough to sit anywhere — turn it on, load a sheet of paper, and start printing.

Featured Content

Product Launch Showcase

Latest Jobs

Don’t have an account? Sign up here

Don't have an account? Sign up now

Forgot password?